Apache Avro is a data serialization system.
Security Fix(es):
A vulnerability in the .NET SDK of Apache Avro allows an attacker to allocate excessive resources, potentially causing a denial-of-service attack. This issue affects .NET applications using Apache Avro version 1.10.2 and prior versions. Users should update to version 1.11.0 which addresses this issue.(CVE-2021-43045)
{
"severity": "High"
}{
"aarch64": [
"avro-1.10.2-4.oe2203.aarch64.rpm",
"avro-1.10.2-4.oe2203sp1.aarch64.rpm",
"avro-1.10.2-4.oe2203sp2.aarch64.rpm"
],
"src": [
"avro-1.10.2-4.oe2203.src.rpm",
"avro-1.10.2-4.oe2203sp1.src.rpm",
"avro-1.10.2-4.oe2203sp2.src.rpm"
],
"x86_64": [
"avro-1.10.2-4.oe2203.x86_64.rpm",
"avro-1.10.2-4.oe2203sp1.x86_64.rpm",
"avro-1.10.2-4.oe2203sp2.x86_64.rpm"
]
}